CVE-2002-1937
Symantec Firewall/VPN Appliance 100 through 200R hardcodes the administrator's MAC address inside the firewall's configuration, which allows remote attackers to spoof the administrator's MAC address and perform an ARP poisoning man-in-the-middle attack to obtain the administrator's password.
Scoring
- CVSS base score
- 0.02
- EPSS probability
- 0.47%
- Published
- 2005-06-28
- Last modified
- 2026-03-16
Affected products
- n/a n/a